Cluster-Wide Secret Access
Granting ClusterRole with get/list/watch verbs on secrets across all namespaces.
Information disclosure: Attackers using that identity can exfiltrate all secrets, pivot across namespaces, and compromise services.
Granting ClusterRole with get/list/watch verbs on secrets across all namespaces.
Sourcery automatically identifies information disclosure from cluster-wide secret read by serviceaccounts or nodes in kubernetes and many other security issues in your codebase.